Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 23-11-2016 Exécuté par Kolchak (25-11-2016 14:41:10) Exécuté depuis C:\Users\Kolchak\Desktop Windows 8.1 Pro N (Update) (X64) (2016-01-03 18:26:46) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-2333191470-4042992404-883720945-500 - Administrator - Disabled) HomeGroupUser$ (S-1-5-21-2333191470-4042992404-883720945-1005 - Limited - Enabled) Invité (S-1-5-21-2333191470-4042992404-883720945-501 - Limited - Enabled) Kolchak (S-1-5-21-2333191470-4042992404-883720945-1001 - Administrator - Enabled) => C:\Users\Kolchak ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) Acronis True Image 2014 (HKLM-x32\...\{E20EC9D6-0292-4AD3-AB41-0FC1F0BE63D3}Visible) (Version: 17.0.5560 - Acronis) Acronis True Image 2014 (x32 Version: 17.0.5560 - Acronis) Hidden Adobe Flash Player 23 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 23.0.0.207 - Adobe Systems Incorporated) Android Studio (HKLM\...\Android Studio) (Version: 1.0 - Google Inc.) ArcSoft TotalMedia 3.5 (HKLM-x32\...\{74292F90-895A-4FC6-A692-9641532B1B63}) (Version: 3.5.28.389 - ArcSoft) Auslogics Disk Defrag Professional (HKLM-x32\...\{ADE1535C-C836-4F2E-BDA1-1C7C304743E3}_is1) (Version: 4.3.7.0 - Auslogics Software Pty Ltd) AviSynth 2.6 (HKLM-x32\...\AviSynth) (Version: 2.6.0.6 - GPL Public release.) Canon IJ Network Scan Utility (HKLM-x32\...\Canon_IJ_Network_Scan_UTILITY) (Version: - ) Canon IJ Network Tool (HKLM-x32\...\Canon_IJ_Network_UTILITY) (Version: - ) Canon MP Navigator EX 2.0 (HKLM-x32\...\MP Navigator EX 2.0) (Version: - ) Canon MP620 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP620_series) (Version: - ) CCleaner (HKLM\...\CCleaner) (Version: 5.02 - Piriform) Centre Souris et Claviers Microsoft (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.7.133.0 - Microsoft Corporation) Centre Souris et Claviers Microsoft (Version: 2.7.133.0 - Microsoft Corporation) Hidden Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.) Cisco LEAP Module (HKLM-x32\...\{AF312B06-5C5C-468E-89B3-BE6DE2645722}) (Version: 1.0.19 - Cisco Systems, Inc.) Cisco PEAP Module (HKLM-x32\...\{0A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F}) (Version: 1.1.6 - Cisco Systems, Inc.) Conceptronic CTVDIGUSB2 Device Utilities (HKLM-x32\...\{DA60AB6B-6C9C-4B5F-BC61-3B0D9BCBD50B}) (Version: 3.0.0.0 - Conceptronic Multimedia) DriversCloud.com (64 bits) (HKLM\...\{AEEC522D-38DD-46FD-9367-3E32F51B3A42}) (Version: 10.0.1.0 - Cybelsoft) DV Scheduler (HKLM-x32\...\DV Scheduler) (Version: 6.06 - ) EaseUS Partition Master 9.2.1 Professional (HKLM-x32\...\EaseUS Partition Master Professional Edition_is1) (Version: - EaseUS) ERUNT 1.1j (HKLM-x32\...\ERUNT_is1) (Version: - Lars Hederer) GnuWin32: Wget-1.11.4-1 (HKLM-x32\...\Wget-1.11.4-1_is1) (Version: 1.11.4-1 - GnuWin32) HashTab 5.2.0.14 (HKLM\...\HashTab) (Version: 5.2.0.14 - Implbits Software) HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.7702 - HP) HP Photosmart 5510 series Aide (HKLM-x32\...\{E02964EA-0E1B-4620-A26E-CBAB0341B1BB}) (Version: 140.0.2.2 - Hewlett Packard) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) inSSIDer 4 (HKLM-x32\...\{23A7D3D7-D312-4549-B349-2226AF6C6A83}) (Version: 4.1.0.60 - MetaGeek, LLC) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.6.1194 - Intel Corporation) Intel(R) Network Connections 21.0.504.0 (HKLM\...\PROSetDX) (Version: 21.0.504.0 - Intel) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.4491 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.9.0.1001 - Intel Corporation) Intel® Hardware Accelerated Execution Manager (HKLM\...\{557D160E-2085-4D38-BDA3-1D5D3F74A3A4}) (Version: 6.0.4 - Intel Corporation) Java 8 Update 111 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180111F0}) (Version: 8.0.1110.14 - Oracle Corporation) JOSM 10161 (HKLM-x32\...\JOSM) (Version: 10161 - OpenStreetMap JOSM team) K-Lite Mega Codec Pack 12.2.5 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 12.2.5 - KLCP) LG Mobile Driver (HKLM-x32\...\{3F490D0E-3131-438C-BCF9-7549CB88DF41}) (Version: 4.1.1 - LG Electronics) LG PC Suite (HKLM-x32\...\LG PC Suite) (Version: 5.3.25.20150529 - LG Electronics) Logiciel de base du périphérique HP Photosmart 5510 series (HKLM\...\{37A7272C-D56E-4AC1-86EB-76CDF1C72FF9}) (Version: 28.0.1315.0 - Hewlett-Packard Co.) Logiciel pour périphérique à chipset Intel® (x32 Version: 10.1.1.32 - Intel(R) Corporation) Hidden Malwarebytes Anti-Malware version 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes) Mediatek RT2870 Wireless LAN Card (HKLM-x32\...\{28DA7D8B-F9A4-4F18-8AA0-551B1E084D0D}) (Version: 1.5.39.165 - MediatekWiFi) Microsoft Office Professionnel Plus 2010 (HKLM\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{CA8A885F-E95B-3FC6-BB91-F4D9377C7686}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{f9b04b37-35d5-4a19-a51b-fcf4a8734851}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{3bcf8c72-b231-4d28-9f39-3405c22d8b5a}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23506 (HKLM-x32\...\{23daf363-3020-4059-b3ae-dc4ad39fed19}) (Version: 14.0.23506.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Module linguistique Microsoft Visual Studio 2010 Tools pour Office Runtime (x64) - FRA (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - FRA) (Version: 10.0.50903 - Microsoft Corporation) Mozilla Firefox 50.0 (x86 fr) (HKLM-x32\...\Mozilla Firefox 50.0 (x86 fr)) (Version: 50.0 - Mozilla) NetTraffic (HKU\S-1-5-21-2333191470-4042992404-883720945-1001\...\NetTraffic) (Version: 1.38.1.0 - VENEA.NET) Postimage version 1.0.1 (HKLM-x32\...\{B8BAF53F-4680-44A4-AF64-9934F924676B}_is1) (Version: 1.0.1 - Postimage) REALTEK DTV USB DEVICE (HKLM-x32\...\{DDBB7C89-1A09-441E-AA0F-6AA465755C17}) (Version: 1.00.0000 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7541 - Realtek Semiconductor Corp.) REALTEK Wireless LAN Driver and Utility (HKLM-x32\...\{9C049509-055C-4CFF-A116-1D12312225EB}) (Version: 1.00.0240 - ) Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.1.39.0 - Renesas Electronics Corporation) Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.1.39.0 - Renesas Electronics Corporation) Hidden Revo Uninstaller Pro 3.1.5 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 3.1.5 - VS Revo Group, Ltd.) SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.45.0 - SAMSUNG Electronics Co., Ltd.) Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{A3364707-2F53-4C83-8F68-C9877A9080C7}) (Version: - Microsoft) Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (Version: - Microsoft) Hidden Slowin' Killer (HKLM-x32\...\Slowin Killer) (Version: 2.1.3 - Security-HelpZone) VapourSynth R31 (HKLM\...\VapourSynth_is1) (Version: R31 - Fredrik Mellbin) VirtualCloneDrive (HKLM-x32\...\VirtualCloneDrive) (Version: 5.5.0.0 - Elaborate Bytes) Vivaldi (HKU\S-1-5-21-2333191470-4042992404-883720945-1001\...\Vivaldi) (Version: 1.5.658.44 - Vivaldi) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN) VMware Workstation (HKLM-x32\...\VMware_Workstation) (Version: 10.0.1 - VMware, Inc) VMware Workstation (Version: 10.0.1 - VMware, Inc.) Hidden VSO Downloader 4.5.0.14 (HKLM-x32\...\{A0D0BA9E-F1A6-44FF-AA14-03ED96B3D56D}_is1) (Version: 4.5.0.14 - VSO Software) WD SES Driver Setup (x32 Version: 1.0.5.7 - Western Digital) Hidden WinPcap 4.1.3 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2980 - CACE Technologies) WirelessMon V4.0 (HKLM-x32\...\WirelessMon_is1) (Version: - PassMark Software ®) ZHPFix 2015 (HKLM-x32\...\ZHPFix_is1) (Version: 2015 - Nicolas Coolman) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-2333191470-4042992404-883720945-1001_Classes\CLSID\{72F6A03F-7B17-4E65-AE37-666FC9024FA2}\InprocServer32 -> D:\PortableApps\AvsGen\KuShellExtension\KuShellExtension64.dll () CustomCLSID: HKU\S-1-5-21-2333191470-4042992404-883720945-1001_Classes\CLSID\{7A5700D2-9B39-45E1-86D5-59B6549F41D3}\InprocServer32 -> D:\PortableApps\avs to x264\utils\KuShellExtension\KuShell64.dll () CustomCLSID: HKU\S-1-5-21-2333191470-4042992404-883720945-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {11A9C63D-89D9-4C3B-A463-6130DB335290} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2016-07-07] () Task: {1C535603-2441-4C87-93CB-766EB16F968E} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2015-12-09] (Microsoft Corporation) Task: {23E210B5-AB2E-4CCA-917A-302844E0D97D} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2015-12-09] (Microsoft Corporation) Task: {43714EF7-0A0E-40C7-9BC2-9596FD8E3145} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-11-08] (Adobe Systems Incorporated) Task: {7187C9A7-48D4-43DB-905B-15329B0A6B1E} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2015-12-09] (Microsoft) Task: {75F9DBDD-AC0F-4091-98BC-B278EFF731F3} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-01-20] (Piriform Ltd) Task: {7D474015-FBBC-4D86-A620-E7427B8D90E7} - System32\Tasks\{E313D486-57FF-4C34-9FC6-7A2EC7888AE6} => pcalua.exe -a "\\BIZNAS-03GV\Jérôme\Précieux\Set ups\sous Windows\Total media\Total media Driver double tuner\setup_9.11.exe" -d "\\BIZNAS-03GV\Jérôme\Précieux\Set ups\sous Windows\Total media\Total media Driver double tuner" Task: {7F687199-E5FE-443D-9490-C1D4D602378A} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2015-12-09] (Microsoft Corporation) Task: {D8D8E2E6-8784-4696-8C71-B328CBB0DAE1} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2015-12-09] (Microsoft Corporation) Task: {FA3450B4-C72A-4552-A77F-2A19B411D481} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_23_0_0_207_pepper.exe [2016-11-08] (Adobe Systems Incorporated) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_23_0_0_207_pepper.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Raccourcis ============================= (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) ==================== Modules chargés (Avec liste blanche) ============== 2013-09-05 00:17 - 2013-09-05 00:17 - 04300456 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF 2016-01-06 19:18 - 2013-03-15 20:48 - 00233472 _____ () D:\PortableApps\avs to x264\utils\KuShellExtension\KuShell64.dll 2014-01-15 16:07 - 2013-03-15 21:48 - 00233472 _____ () D:\PortableApps\AvsGen\KuShellExtension\KuShellExtension64.dll 2016-02-05 09:36 - 2013-10-18 16:42 - 00048856 _____ () C:\Windows\runSW.exe 2016-02-06 03:05 - 2016-02-06 03:05 - 00307200 _____ () C:\Program Files (x86)\NetTraffic\ZedGraph.dll 2016-11-22 17:10 - 2013-07-21 18:35 - 16306936 _____ () C:\Program Files (x86)\Postimage\postimage.exe 2015-01-21 03:06 - 2015-01-21 03:06 - 00061440 _____ () C:\Program Files\CCleaner\lang\lang-1036.dll 2015-01-06 14:18 - 2015-01-06 14:18 - 00039192 _____ () C:\Program Files\CCleaner\branding.dll 2013-09-05 00:14 - 2013-09-05 00:14 - 04300456 _____ () C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF 2016-11-22 15:46 - 2016-11-21 12:52 - 01871480 _____ () C:\Users\Kolchak\AppData\Local\Vivaldi\Application\1.5.658.44\libglesv2.dll 2016-11-22 15:46 - 2016-11-21 12:52 - 00086648 _____ () C:\Users\Kolchak\AppData\Local\Vivaldi\Application\1.5.658.44\libegl.dll 2015-02-25 13:15 - 2015-02-25 13:15 - 01243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppXSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BFE => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BITS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ClipSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MpsSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\msiserver => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SharedAccess => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRemoveSafeBoot => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vss => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WSService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AppXSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\BITS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ClipSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\msiserver => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SamSs => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srv => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srv2 => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srvnet => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRemoveSafeBoot => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vss => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WSService => ""="Service" ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) ==================== Hosts contenu: ========================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2013-08-22 14:25 - 2016-03-05 22:35 - 00001583 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost 127.0.0.1 activation.acronis.com 66.98.148.65 auto.search.msn.com 66.98.148.65 auto.search.msn.es 108.162.203.254 t411.in www.t411.in forum.t411.in wiki.t411.in api.t411.in 108.162.204.254 t411.in www.t411.in forum.t411.in wiki.t411.in api.t411.in 88.198.168.163 irc.t411.in 104.27.149.10 t411.download 104.24.124.37 t411.io www.t411.io forum.t411.io wiki.t411.io api.t411.io tracker.t411.io 104.24.125.37 t411.io www.t411.io forum.t411.io wiki.t411.io api.t411.io tracker.t411.io 88.198.168.163 irc.t411.io 104.18.37.180 t411.me www.t411.me forum.t411.me wiki.t411.me api.t411.me tracker.t411.me 104.18.36.180 t411.me www.t411.me forum.t411.me wiki.t411.me api.t411.me tracker.t411.me 88.198.168.163 irc.t411.me ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-2333191470-4042992404-883720945-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Theme1\img1.jpg DNS Servers: 109.0.66.10 - 109.0.66.20 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == MSCONFIG\Services: ACDaemon => 2 MSCONFIG\Services: DVScheduler => 2 MSCONFIG\Services: MBAMService => 2 MSCONFIG\Services: syncagentsrv => 2 MSCONFIG\Services: VMAuthdService => 2 MSCONFIG\Services: VMUSBArbService => 2 MSCONFIG\Services: VMware NAT Service => 2 MSCONFIG\Services: VMwareHostd => 2 HKLM\...\StartupApproved\StartupFolder: => "Remote Control.lnk" HKLM\...\StartupApproved\StartupFolder: => "TMMonitor.lnk" HKLM\...\StartupApproved\Run: => "IAStorIcon" HKLM\...\StartupApproved\Run: => "RTHDVCPL" HKLM\...\StartupApproved\Run: => "Acronis Scheduler2 Service" HKLM\...\StartupApproved\Run: => "BCSSync" HKLM\...\StartupApproved\Run32: => "VirtualCloneDrive" HKLM\...\StartupApproved\Run32: => "AcronisTibMounterMonitor" HKLM\...\StartupApproved\Run32: => "TrueImageMonitor.exe" HKLM\...\StartupApproved\Run32: => "ArcSoft Connection Service" HKLM\...\StartupApproved\Run32: => "vmware-tray.exe" HKLM\...\StartupApproved\Run32: => "DVSTray" HKLM\...\StartupApproved\Run32: => "IJNetworkScanUtility" HKU\S-1-5-21-2333191470-4042992404-883720945-1001\...\StartupApproved\Run: => "OfficeSyncProcess" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{DEF54A8F-9322-46D9-89BF-DBD97BB457B1}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe FirewallRules: [{8F7FE7E2-1A96-47CC-9C3C-84AFEC4BEFC3}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe FirewallRules: [{BFB91322-F24D-4763-90E3-D20F7551F0D6}] => (Block) %ProgramFiles% (x86)\Auslogics\Disk Defrag Professional\DiskDefragPro.exe FirewallRules: [{5BD44C64-ADFA-48D5-9BE9-23B00F21AF93}] => (Block) %ProgramFiles% (x86)\Auslogics\Disk Defrag Professional\DiskDefragPro.exe FirewallRules: [{2FE30CFE-0260-4458-8753-E802BD6D88D2}] => (Allow) C:\Program Files (x86)\MediatekWiFi\Common\RaUI.exe FirewallRules: [{7A810B80-EBF9-44CA-A20D-3F756FE4AEEF}] => (Allow) D:\PortableApps\uTorrent Pro Portable\App\uTorrent\uTorrent.exe FirewallRules: [{B1C8C06C-4A17-47AA-BC04-1E0A45AAF0B2}] => (Allow) D:\PortableApps\uTorrent Pro Portable\App\uTorrent\uTorrent.exe FirewallRules: [{80E1C850-FCF8-4E15-904E-9605EA350D1D}] => (Allow) C:\Program Files (x86)\MediatekWiFi\Common\ApUI.exe FirewallRules: [{F17F1B2A-56D6-419F-8523-12376C3CEA03}] => (Allow) LPort=1688 FirewallRules: [TCP Query User{0699A95F-290D-4730-8DDB-CEF0BA2FE738}D:\portableapps\replaytv_pack_13.1\rtmpexplorex\rtmpexplorex_2.5\rtmpsrv.exe] => (Allow) D:\portableapps\replaytv_pack_13.1\rtmpexplorex\rtmpexplorex_2.5\rtmpsrv.exe FirewallRules: [UDP Query User{6411838D-311F-4294-A388-2C1DEA811FBF}D:\portableapps\replaytv_pack_13.1\rtmpexplorex\rtmpexplorex_2.5\rtmpsrv.exe] => (Allow) D:\portableapps\replaytv_pack_13.1\rtmpexplorex\rtmpexplorex_2.5\rtmpsrv.exe FirewallRules: [{863C336D-41CC-449C-AAC7-77EE2A79AA8C}] => (Block) D:\portableapps\replaytv_pack_13.1\rtmpexplorex\rtmpexplorex_2.5\rtmpsrv.exe FirewallRules: [{CAB43A72-AC4B-4068-9A45-BAD1318E5348}] => (Block) D:\portableapps\replaytv_pack_13.1\rtmpexplorex\rtmpexplorex_2.5\rtmpsrv.exe FirewallRules: [TCP Query User{6BDA2020-E18C-43AD-AE1F-BCA8C1BBCC36}D:\portableapps\replaytv_pack_13.1\rtmpexplorex\rtmpexplorex_2.5\rtmpsuck.exe] => (Allow) D:\portableapps\replaytv_pack_13.1\rtmpexplorex\rtmpexplorex_2.5\rtmpsuck.exe FirewallRules: [UDP Query User{6BDEA7C3-5DA5-44FC-9EE8-55971D02104D}D:\portableapps\replaytv_pack_13.1\rtmpexplorex\rtmpexplorex_2.5\rtmpsuck.exe] => (Allow) D:\portableapps\replaytv_pack_13.1\rtmpexplorex\rtmpexplorex_2.5\rtmpsuck.exe FirewallRules: [{C5021197-2E0E-4BBA-9473-B6F46F6B5CFC}] => (Block) D:\portableapps\replaytv_pack_13.1\rtmpexplorex\rtmpexplorex_2.5\rtmpsuck.exe FirewallRules: [{A2C0FDBE-8B62-4BFD-86B7-F567746D03BF}] => (Block) D:\portableapps\replaytv_pack_13.1\rtmpexplorex\rtmpexplorex_2.5\rtmpsuck.exe FirewallRules: [{C4F92D4A-EC69-4466-BAD8-0B928A54CEA2}] => (Allow) D:\PortableApps\uTorrent Pro Portable\App\uTorrent\uTorrent.exe FirewallRules: [{6FD286C4-0C57-4A00-826D-C27B39FC81C7}] => (Allow) D:\PortableApps\uTorrent Pro Portable\App\uTorrent\uTorrent.exe FirewallRules: [{B430F71E-E84E-4794-8CDE-627663924644}] => (Allow) C:\Program Files (x86)\ArcSoft\TotalMedia 3.5\TotalMedia.exe FirewallRules: [{1FDC9863-0CA2-475C-AB43-D521F6D0631C}] => (Allow) C:\Program Files (x86)\ArcSoft\TotalMedia 3.5\TotalMedia.exe FirewallRules: [{A2836314-984A-4938-AD76-F6BE50086596}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe FirewallRules: [{B60E1408-2F99-4825-8777-FF458B8E1B46}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe FirewallRules: [{58AB8A18-2996-4D59-9C7E-388E7456488E}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe FirewallRules: [{C6CCEDBC-2CB6-4FE5-87D3-E8D8AD8C1AE4}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe FirewallRules: [{D80EE1D4-2E92-4CBF-A1FA-223FB5BDB590}] => (Allow) C:\PROGRA~2\REALTEK\USBWIR~1\RtWlan.exe FirewallRules: [{B8993F4C-2731-44F1-AB6F-0D3E9DC85A90}] => (Allow) LPort=1542 FirewallRules: [{31C8126F-F093-4DA0-85B4-1203252B90DF}] => (Allow) LPort=1542 FirewallRules: [{04011B71-66E3-426D-9E02-9588FDCB45FA}] => (Allow) LPort=53 FirewallRules: [{1247B159-45B8-454F-8492-9A7AA4BCCFA6}] => (Allow) C:\PROGRA~2\REALTEK\USBWIR~1\Rtldhcp.exe FirewallRules: [{4E1ABEE4-82BA-42B5-A138-D750344E755F}] => (Allow) C:\Program Files (x86)\Realtek\USB Wireless LAN Utility\RTLDHCP.exe FirewallRules: [{5AAF8E0D-BDCD-4591-8951-741BA44B2243}] => (Allow) C:\Program Files (x86)\Realtek\USB Wireless LAN Utility\RTLDHCP.exe FirewallRules: [{5A02FBA5-3E2D-461F-A507-04C2D0CB0C13}] => (Allow) LPort=53 FirewallRules: [{9EA1A502-78B2-43B1-A945-9E2660E697E0}] => (Allow) C:\Program Files (x86)\Realtek\USB Wireless LAN Utility\RTLDHCP.exe FirewallRules: [{361B6EE6-05C8-4C66-BA26-E9E6D6781CF8}] => (Allow) C:\Program Files (x86)\Realtek\USB Wireless LAN Utility\RTLDHCP.exe FirewallRules: [{9A58916F-EF43-47B6-833E-B49236474E0C}] => (Allow) C:\Program Files (x86)\Realtek\USB Wireless LAN Utility\RTLDHCP.exe FirewallRules: [{E01406ED-4BF3-42C9-8709-67FF1665A9B3}] => (Allow) C:\Program Files (x86)\Realtek\USB Wireless LAN Utility\RTLDHCP.exe FirewallRules: [{6B27992C-0A48-437F-87E9-778CF3C57920}] => (Allow) C:\Program Files\HP\HP Photosmart 5510 series\Bin\DeviceSetup.exe FirewallRules: [{A5B3EFAB-7F65-45A1-AD78-EE73BD7019CC}] => (Allow) C:\Program Files\HP\HP Photosmart 5510 series\Bin\HPNetworkCommunicator.exe FirewallRules: [{7754D37E-DA07-44F9-A303-E9B9E24260D5}] => (Allow) C:\Program Files\HP\HP Photosmart 5510 series\Bin\HPNetworkCommunicatorCom.exe FirewallRules: [TCP Query User{71DFC363-4E58-4D16-A1A2-FE3AEF54AE5C}C:\program files (x86)\internet explorer\iexplore.exe] => (Allow) C:\program files (x86)\internet explorer\iexplore.exe FirewallRules: [UDP Query User{96EBE46B-CB35-4658-A4A6-51E2E5562E9B}C:\program files (x86)\internet explorer\iexplore.exe] => (Allow) C:\program files (x86)\internet explorer\iexplore.exe FirewallRules: [{5E39E81E-FBF0-482E-8E78-2BB536C2E801}] => (Allow) C:\Program Files (x86)\DV Scheduler\util\DVPiper.exe FirewallRules: [{F26910BC-3D13-4C86-96A3-6E6B17D1AEAE}] => (Allow) C:\Program Files (x86)\DV Scheduler\util\DVPiper.exe FirewallRules: [{7268D9C2-C373-4A5C-87DC-DCE6E0D3A801}] => (Allow) C:\Program Files (x86)\DV Scheduler\util\DVPiper.exe FirewallRules: [{5F75E8E5-EA86-4818-8702-A6FC047AF9A3}] => (Allow) C:\Program Files (x86)\DV Scheduler\util\DVPiper.exe FirewallRules: [{BD88B9D9-2A49-4511-9946-45B5C268C60B}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{4D106003-1372-41D4-8926-BAD86163FD45}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{FE4CC08D-45A5-4C1A-B0C2-885BABBD90CE}C:\program files (x86)\mozilla firefox\plugin-container.exe] => (Allow) C:\program files (x86)\mozilla firefox\plugin-container.exe FirewallRules: [UDP Query User{9A9A675A-3AC8-428F-9E86-F0A7BA7795F9}C:\program files (x86)\mozilla firefox\plugin-container.exe] => (Allow) C:\program files (x86)\mozilla firefox\plugin-container.exe FirewallRules: [TCP Query User{0D23FA0A-8075-427C-9CB4-9E83CCF730D1}C:\program files (x86)\videolan\vlc\vlc.exe] => (Allow) C:\program files (x86)\videolan\vlc\vlc.exe FirewallRules: [UDP Query User{33FCEDF6-9316-4621-94BC-09228862BED0}C:\program files (x86)\videolan\vlc\vlc.exe] => (Allow) C:\program files (x86)\videolan\vlc\vlc.exe FirewallRules: [TCP Query User{B5F1DC9A-61E4-424B-986A-46C1F193204F}C:\program files\android\android studio\jre\bin\java.exe] => (Allow) C:\program files\android\android studio\jre\bin\java.exe FirewallRules: [UDP Query User{9F31029C-BEC5-4F50-B8D1-79727FCCAB43}C:\program files\android\android studio\jre\bin\java.exe] => (Allow) C:\program files\android\android studio\jre\bin\java.exe FirewallRules: [{6223BAF2-D4E6-46F9-82A3-8F464241D8F7}] => (Block) C:\program files\android\android studio\jre\bin\java.exe FirewallRules: [{B694D50F-FCE0-4B04-A32A-F676ECB0ED17}] => (Block) C:\program files\android\android studio\jre\bin\java.exe FirewallRules: [{1AAB26BE-F31A-493A-93C0-9828DF177E8E}] => (Allow) C:\Program Files\DriversCloud.com\DriversCloud.exe FirewallRules: [{EEAAB96A-5D7B-455C-AB99-DF5748FD412E}] => (Allow) C:\Program Files\DriversCloud.com\DriversCloud.exe ==================== Points de restauration ========================= 09-11-2016 13:18:25 Windows Update 17-11-2016 09:18:15 Point de contrôle planifié 21-11-2016 09:28:59 Installed DriversCloud.com (64 bits) 22-11-2016 17:08:56 Revo Uninstaller Pro's restore point - Postimage version 1.0.1 ==================== Éléments en erreur du Gestionnaire de périphériques ============= Name: VMware Virtual Ethernet Adapter for VMnet1 Description: VMware Virtual Ethernet Adapter for VMnet1 Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: VMware, Inc. Service: VMnetAdapter Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (11/25/2016 01:13:30 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Échec de l’activation des licences (slui.exe) avec le code d’erreur suivant : hr=0xC004F074 Arguments de la ligne de commande : RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=7476d79f-8e48-49b4-ab63-4d0b813a16e4;NotificationInterval=1440;Trigger=NetworkAvailable Error: (11/25/2016 01:13:20 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Échec de l’activation des licences (slui.exe) avec le code d’erreur suivant : hr=0xC004F074 Arguments de la ligne de commande : RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=7476d79f-8e48-49b4-ab63-4d0b813a16e4;NotificationInterval=1440;Trigger=NetworkAvailable Error: (11/25/2016 01:13:17 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Échec de l’activation des licences (slui.exe) avec le code d’erreur suivant : hr=0xC004F074 Arguments de la ligne de commande : RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=7476d79f-8e48-49b4-ab63-4d0b813a16e4;NotificationInterval=1440;Trigger=NetworkAvailable Error: (11/25/2016 01:13:17 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Échec de l’activation des licences (slui.exe) avec le code d’erreur suivant : hr=0xC004F074 Arguments de la ligne de commande : RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=7476d79f-8e48-49b4-ab63-4d0b813a16e4;NotificationInterval=1440;Trigger=NetworkAvailable Error: (11/25/2016 11:35:22 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: AUTORITE NT) Description: Le déchargement des chaînes de compteurs de performances pour le service WmiApRpl (WmiApRpl) a échoué. Le premier DWORD de la section Data contient le code d’erreur. Error: (11/25/2016 11:35:22 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: AUTORITE NT) Description: Les chaînes de performance dans la valeur de Registre Performance sont endommagées lors du traitement du fournisseur de compteurs d’extension Performance. La valeur BaseIndex à partir du Registre de performance est le premier DWORD dans la section Données, la valeur LastCounter est le deuxième DWORD dans la section Données, et la valeur LastHelp est le troisième DWORD dans la section Données. Error: (11/25/2016 11:35:22 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: AUTORITE NT) Description: Les chaînes de performance dans la valeur de Registre Performance sont endommagées lors du traitement du fournisseur de compteurs d’extension Performance. La valeur BaseIndex à partir du Registre de performance est le premier DWORD dans la section Données, la valeur LastCounter est le deuxième DWORD dans la section Données, et la valeur LastHelp est le troisième DWORD dans la section Données. Error: (11/25/2016 11:31:48 AM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Échec de l’activation des licences (slui.exe) avec le code d’erreur suivant : hr=0xC004F074 Arguments de la ligne de commande : RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=7476d79f-8e48-49b4-ab63-4d0b813a16e4;NotificationInterval=1440;Trigger=NetworkAvailable Error: (11/25/2016 11:31:42 AM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Échec de l’activation des licences (slui.exe) avec le code d’erreur suivant : hr=0xC004F074 Arguments de la ligne de commande : RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=7476d79f-8e48-49b4-ab63-4d0b813a16e4;NotificationInterval=1440;Trigger=UserLogon;SessionId=1 Error: (11/24/2016 05:06:53 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Échec de l’activation des licences (slui.exe) avec le code d’erreur suivant : hr=0xC004F074 Arguments de la ligne de commande : RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=7476d79f-8e48-49b4-ab63-4d0b813a16e4;NotificationInterval=1440;Trigger=NetworkAvailable Erreurs système: ============= Error: (11/25/2016 12:25:08 PM) (Source: DCOM) (EventID: 10010) (User: Hal) Description: Le serveur {1B1F472E-3221-4826-97DB-2C2324D389AE} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (11/25/2016 12:24:38 PM) (Source: DCOM) (EventID: 10010) (User: Hal) Description: Le serveur {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (11/25/2016 11:31:31 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service Realtek DHCP Service s’est terminé de façon inattendue pour la 1ème fois. Error: (11/25/2016 11:31:03 AM) (Source: NETLOGON) (EventID: 3095) (User: ) Description: Cet ordinateur est configuré en tant que membre d’un groupe de travail, et non en tant que membre d’un domaine. Il n’est pas nécessaire d’exécuter le service Accès réseau dans cette configuration. Error: (11/24/2016 02:44:47 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service Realtek DHCP Service s’est terminé de façon inattendue pour la 1ème fois. Error: (11/24/2016 02:44:20 PM) (Source: NETLOGON) (EventID: 3095) (User: ) Description: Cet ordinateur est configuré en tant que membre d’un groupe de travail, et non en tant que membre d’un domaine. Il n’est pas nécessaire d’exécuter le service Accès réseau dans cette configuration. Error: (11/24/2016 02:43:34 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service Intel(R) Rapid Storage Technology s’est terminé de façon inattendue pour la 1ème fois. Error: (11/24/2016 02:43:34 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service SAMSUNG Mobile Connectivity Service s’est terminé de façon inattendue pour la 1ème fois. Error: (11/24/2016 02:43:34 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service VMware DHCP Service s’est terminé de façon inattendue pour la 1ème fois. Error: (11/24/2016 02:43:34 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service RunSwUSB s’est terminé de façon inattendue pour la 1ème fois. CodeIntegrity: =================================== Date: 2016-11-25 12:24:19.933 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-11-24 11:43:59.762 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-11-23 18:25:11.369 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Users\Kolchak\AppData\Local\Temp\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-11-23 09:10:50.931 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-11-22 07:19:01.317 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-11-21 08:45:10.542 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-11-20 13:01:20.661 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-11-19 13:32:57.721 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM) i7-3770K CPU @ 3.50GHz Pourcentage de mémoire utilisée: 35% Mémoire physique - RAM - totale: 8091.39 MB Mémoire physique - RAM - disponible: 5251.62 MB Mémoire virtuelle totale: 9307.39 MB Mémoire virtuelle disponible: 5228.64 MB ==================== Lecteurs ================================ Drive c: () (Fixed) (Total:74.53 GB) (Free:30.97 GB) NTFS ==>[lecteur avec composants d'amorçage (obtenu depuis BCD)] Drive d: (My Book) (Fixed) (Total:1862.98 GB) (Free:1568.53 GB) NTFS Drive e: (My Book Films) (Fixed) (Total:930.86 GB) (Free:339.59 GB) NTFS ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 74.5 GB) (Disk ID: B107251D) Partition 1: (Active) - (Size=74.5 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows XP) (Size: 1863 GB) (Disk ID: 1A68D377) Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (MBR Code: Windows 7 or 8) (Size: 930.9 GB) (Disk ID: 016C9A6F) Partition 1: (Not Active) - (Size=930.9 GB) - (Type=07 NTFS) ==================== Fin de Addition.txt ============================